SlideShare a Scribd company logo
Emerging From Web 2.0
     Web 2.0 Expo Berlin 2007
quot;Its deļ¬nitely time to declare              quot;OpenID is a protocol made
      OpenID a winnerquot;                      for the public, by the public.
         TechCrunch                         No one owns or controls your
                                             login information:You do.quot;
                                                      37signals
        quot;...sees great potential for OpenID's use
           alongside enterprise-ready software
                      infrastructurequot;
                    Sun Microsystems

                                               quot;taking the world by stormquot;
 quot;this high proļ¬le announcement marks
                                                       Tim O'Reilly
the importance of single sign on identity
technology to the future of the Internetquot;
             ReadWriteWeb
What is OpenID?
ā€¢   Single sign-on for the web
ā€¢   Simple and light-weight
    (not going to replace your bank card pin)

ā€¢   Easy to use and deploy
ā€¢   Built upon proven existing technologies
    (DNS, HTTP, SSL/TLS, Difļ¬e-Hellman)

ā€¢   Decentralized
    (you don't have to ask anyone permission to implement it)

ā€¢   Free!
An OpenID is a URI
ā€¢   URLs are globally unique
    and ubiquitous

ā€¢   OpenID allows proving
    ownership of an URI

ā€¢   People already have
    identity at URLs via
    blogs, photos, MySpace,
    FaceBook, etc

ā€¢   People already describe
    relationships via URLs
    (e.g. links to my friends)
OpenID is Decentralized
Beneļ¬ts
ā€¢   Reduces the number of usernames and
    passwords
ā€¢   Simpliļ¬es new account creation
ā€¢   Allows for lightweight accounts
ā€¢   Simpliļ¬es internal SSO
ā€¢   Enables wide-spread beneļ¬t of strong
    authentication
ā€¢   Enables decentralized reputation
ā€¢   Enables social network portability
O
      M
    E
How Does it Work?


D
As a Conversation

  Who are you?



             Iā€™m davidrecordon.com




     Prove it!
Discovers My Provider




quot;openid.serverquot; points to my OpenID Provider
(crypto happens)
Getting an OpenID




   http://openid.net/get/
OpenID is Really Easy
quot;This is a
 geek's toy,
nobody will
ever have an
 OpenID!quot;
~160 million OpenIDs
     (including every AOL user)




                                  OpenID 1.1 - Estimated from various services
quot;Nobody will ever use this!quot;
Total Relying Parties              (aka places you can login with OpenID)




6,000


4,500


3,000


1,500


   0
                   ov




                                       b




                                                     ay




                                                                    ly
                              '06




                                           ar




                                                            ne




                                                                                         ov




                                                                                                                            ay




                                                                                                                                              ly
        '05

              ct




                        ec




                                                 r




                                                                          g




                                                                                                                                    ne
                                                                                p




                                                                                              ec

                                                                                                     '07

                                                                                                              b
                                                                                    ct




                                                                                                                  ar

                                                                                                                        r




                                                                                                                                                     st

                                                                                                                                                            22
                                                Ap




                                                                                                                       Ap
                                                                         Au
                                    Fe




                                                                              Se




                                                                                                           Fe
                                                                 Ju




                                                                                                                                           Ju

                                                                                                                                                    gu
              O




                                                                                    O
                                           M




                                                                                                                  M
                                                     M




                                                                                                                            M
                        D




                                                                                              D
                                                          Ju




                                                                                                                                  Ju
                   N




                                                                                         N




                                                                                                                                                           p
      p




                             Jan




                                                                                                    Jan




                                                                                                                                                   Au

                                                                                                                                                         Se
    Se




                                                                                                                                OpenID 1.1 - As viewed by MyOpenID.com
quot;So that's great there
are so many blogs, but
what about something
        real?quot;
quot;What about security?quot;
ā€œProtocol Security?ā€
like any protocol...think as
      you implement
the best solutions may
  around the browser
MyVidoop Plugin
(a password manager tied into your OpenID account add-on for Firefox)
Sxipper
(a form ļ¬ller password manager with OpenID integration add-on for Firefox)
Symantec Identity Client
(OpenID form-ļ¬ll, upcoming provider, and claims integration)
VeriSign's OpenID SeatBelt
(an OpenID convenience and security add-on for Firefox)



                      works with
IE Team has posted a job
ad mentioning quot;OpenIDquot;
quot;Does the idea of redeļ¬ning the role of the Internet browser appeal to you?
Do the terms HTTP, RSS, Microformats, and OpenID, excite you? If so, then
                this just might be the opportunity for you.quot;
OpenID is great for innovation
ā€œSo, what about OpenID 2.0?ā€
OpenID 2.0
ā€¢ Cleans up the 1.1 speciļ¬cation
ā€¢ Adds a few useful features
 ā€¢ Robust extensibility
 ā€¢ Enhanced service discovery
 ā€¢ quot;Directed identityquot;
 ā€¢ XRI
ā€¢ About six independent library
  implementations of ļ¬nal draft
ā€œAny OpenID in the enterprise?ā€
Offer all employees
 OpenIDs; open source
   Enterprise SSO and
  identity manager with
    LDAP and OpenID

 Internal SSO for bug
  trackers and wikis
  OpenID Provider with
plans to ship in enterprise
    products this year
Shared OpenID Provider
 for their businesses and
         partners
   Project management,
CRM, and billing for small
        businesses
Open.ID.ee
I come from E-stonia
ā€¢ A small EU country with ~1.3M inhabitants
ā€¢ Access to internet considered a ā€œcivil rightā€
ā€¢ Had ļ¬rst parliament elections over the
  internet in 2005
ā€¢ 80%+ of the population have a digital ID-
  card
ID-card
ID-card is a...
ā€¢ Photo ID like any other
ā€¢ We are interested in Electronic ID:
 ā€¢ The chip contains your name, age, gender
    and social security number
 ā€¢ Two PIN codes: one for authentication
    and one for signing documents
Authentication

ā€¢ Is about proving who you are.
ā€¢ Available to any service that wants to use it
 ā€¢ Online banking
 ā€¢ Filing your taxes
 ā€¢ Various other services
quot;How does this happen?quot;
Entering your PIN code is
  your consent to send
  personal data to the
         service
Yes/No decision
quot;So what is the problem?quot;
Users do not always want this.
Users want control of their
       personal data.
What is Identity?

ā€¢ Wikipedia: ā€œthe sameness of two thingsā€
 ā€¢ ā€œThingsā€ are users
 ā€¢ Users are website visitors
ā€¢ ā€œWho are you?ā€
Are you the same you
that signed up with us?
ID-card contains
government veriļ¬ed
       identity
Same Can be Different

ā€¢ Bank: Martin Paljak, the account owner
ā€¢ Forum: user who registered as ā€œcatluvr99ā€
ā€¢ Blog: author of the comment
ā€¢ http://open.id.ee/martin.paljak is Martin Paljak
Is the OpenID you
present the same as we
 have in our database?
Websites really need to
match identiļ¬ers, not
 collect your personal
          data.
Solution: OpenID
ā€¢ id.ee => open.id.ee
ā€¢ OpenID service that uses ID-cards for
  authentication
ā€¢ Gives users more control over their private
  data
ā€¢ Is NOT a government enforced/controlled
  service
Simplicity

ā€¢ One privacy policy to check
ā€¢ One trust decision to make
ā€¢ One purpose for the OpenID service
 ā€¢ Encapsulate and protect usersā€™ private
    data
No need to sign up, it
   JustWorks
... if you have the needed
hardware and software ...
quot;So if everybody implements
 OpenID, are we all happy?quot;
quot;What about website developers?quot;
ID-card Sucks!
ā€¢ Implementing support is difļ¬cult
 ā€¢ Technically challenging (SSL certiļ¬cates
    and such)
ā€¢ Users donā€™t like ID-cards anyway as they
  are often afraid of privacy issues
ā€¢ Most sites donā€™t need so high security
ā€¢ So... why bother?
I Forgot!

ā€¢ Mobile-ID: same stuff inside your GSM SIM
  card
 ā€¢ Same technology inside ...
 ā€¢ ... but totally different to implement ...
 ā€¢ ... AGAIN!!!
What is Mobile-ID?

ā€¢ Smaller ID-card
ā€¢ No hardware needed - your phone is
  your card reader
ā€¢ No need to install software to use it online
  - websites have it
beep-beep!
If youā€™re going to write
  new code, why not
     OpenID code?
Beneļ¬ts of OpenID
ā€¢ Only one interface to implement
 ā€¢ And lots of expertise available globally
ā€¢ If website uses open.id.ee service
  exclusively, it has instant access to both
  ID-cards and Mobile-ID authentication
ā€¢ ... with privacy features included @ no cost
So ...

ā€¢ Users get more control over their private
  data and OpenID provides it
ā€¢ Websites have a simple and easy way to
  integrate newest authentication
  technologies with OpenID
Finally a win-win solution?
Almost there ...
Anonymity

ā€¢ Users want anonymity
 ā€¢ At least partial
ā€¢ Remaining anonymous is a privilege
 ā€¢ Spam, death threats etc must be
    punishable
The story
ā€¢ Riots in Tallinn that leaded to cyber-attacks
ā€¢ Petition letter to force a politician resign
  collected almost 100k names and e-mails
  ā€¢ Including ā€œGeorge Bushā€, ā€œRex the dogā€
    and ā€œ!@#$ youā€
ā€¢ Result: nothing.
OpenID 2.0

ā€¢ New feature: identity selection
 ā€¢ You get to choose the OpenID sent to
    the website
ā€¢ Choose between open.id.ee/martin.paljak ...
or
http://open.id.ee/5a0eaba4bb1fb68a39ddec57c15dbff1543d6f461b2203f74
Anonymous OpenID

ā€¢ No (zero) personal data in the URL
ā€¢ One anonymous URL per user per website
 ā€¢ The ā€œaccountā€ problem mitigated
ā€¢ Still a guarantee that the user behind the
  OpenID is a real person
Extra Features

ā€¢ Identity theft virtually impossible
 ā€¢ re-claiming is painless
ā€¢ Some registration data is always true
 ā€¢ If user chooses to send it
 ā€¢ ā€œWhy do they need it?ā€
Why do I Care?

ā€¢ Iā€™m a user too!
ā€¢ We export the ID technology of Estonia
ā€¢ Online privacy issues are being discussed
ā€¢ Veriļ¬ed anonymity contributes to
  e-democracy
Why you should care!
ā€¢ Implement OpenID - get access to our
  technology
ā€¢ Other EU countries deploying ID-cards
 ā€¢ Similar problems
 ā€¢ Similar solutions
ā€¢ OpenID is designed for interoperability
 ā€¢ ID-cards are in theory
Thanks!
                     Questions?
                      http://openid.net/
              https://open.id.ee/about/english




 David Recordon                               Martin Paljak
davidrecordon.com                          http://ideelabor.ee
david@sixapart.com                         martin@ideelabor.ee

More Related Content

What's hot

NEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_FinalNEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_Finalfinance37
Ā 
Domagoj Margetic
Domagoj MargeticDomagoj Margetic
Domagoj Margetic
Emil Čić
Ā 
Sales insitute of ireland november 2010
Sales insitute of ireland november 2010Sales insitute of ireland november 2010
Sales insitute of ireland november 2010Sales Institute Ireland
Ā 
U r not alone press
U r not alone   pressU r not alone   press
U r not alone pressurnotalonemovie
Ā 
2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland
Griffith Honda
Ā 
Using Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin BrekkeUsing Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin Brekke
John Dorner
Ā 
Sse wumart group5b_2011
Sse wumart group5b_2011Sse wumart group5b_2011
Sse wumart group5b_2011erikingemansson
Ā 
Ed Burns @ FOWA 08
Ed Burns @ FOWA 08Ed Burns @ FOWA 08
Ed Burns @ FOWA 08
carsonsystems
Ā 
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012CHISWICK ROOMS HOTEL
Ā 
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.CHISWICK ROOMS HOTEL
Ā 
2010 Honda Insight Hybrid
2010 Honda Insight Hybrid2010 Honda Insight Hybrid
2010 Honda Insight Hybrid
Bell Honda
Ā 
Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...Monika Lehnhardt
Ā 
Neonatal hearing screening ā€“ a short overview of the situation in western eur...
Neonatal hearing screening ā€“ a short overview of the situation in western eur...Neonatal hearing screening ā€“ a short overview of the situation in western eur...
Neonatal hearing screening ā€“ a short overview of the situation in western eur...MonikaLehnhardt
Ā 
VMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload MobilityVMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload MobilitySal Lopez
Ā 
300
300300
Dental amalgam
Dental amalgamDental amalgam
Dental amalgamZirgi Rana
Ā 
Housing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in SloveniaHousing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in Slovenia
FEANTSA
Ā 
Dave Folio
Dave FolioDave Folio
Dave Folio
Dave Lilly
Ā 
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
Massimo Menichinelli
Ā 

What's hot (19)

NEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_FinalNEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_Final
Ā 
Domagoj Margetic
Domagoj MargeticDomagoj Margetic
Domagoj Margetic
Ā 
Sales insitute of ireland november 2010
Sales insitute of ireland november 2010Sales insitute of ireland november 2010
Sales insitute of ireland november 2010
Ā 
U r not alone press
U r not alone   pressU r not alone   press
U r not alone press
Ā 
2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland
Ā 
Using Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin BrekkeUsing Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin Brekke
Ā 
Sse wumart group5b_2011
Sse wumart group5b_2011Sse wumart group5b_2011
Sse wumart group5b_2011
Ā 
Ed Burns @ FOWA 08
Ed Burns @ FOWA 08Ed Burns @ FOWA 08
Ed Burns @ FOWA 08
Ā 
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Ā 
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Ā 
2010 Honda Insight Hybrid
2010 Honda Insight Hybrid2010 Honda Insight Hybrid
2010 Honda Insight Hybrid
Ā 
Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...
Ā 
Neonatal hearing screening ā€“ a short overview of the situation in western eur...
Neonatal hearing screening ā€“ a short overview of the situation in western eur...Neonatal hearing screening ā€“ a short overview of the situation in western eur...
Neonatal hearing screening ā€“ a short overview of the situation in western eur...
Ā 
VMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload MobilityVMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload Mobility
Ā 
300
300300
300
Ā 
Dental amalgam
Dental amalgamDental amalgam
Dental amalgam
Ā 
Housing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in SloveniaHousing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in Slovenia
Ā 
Dave Folio
Dave FolioDave Folio
Dave Folio
Ā 
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
Ā 

Viewers also liked

JWT Agile Framework
JWT Agile FrameworkJWT Agile Framework
JWT Agile Framework
Emmanuel Flores ElĆ­as
Ā 
Stateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWTStateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWT
Mobiliya
Ā 
Understanding OpenID
Understanding OpenIDUnderstanding OpenID
Understanding OpenID
Prabath Siriwardena
Ā 
JWT Authentication with AngularJS
JWT Authentication with AngularJSJWT Authentication with AngularJS
JWT Authentication with AngularJS
robertjd
Ā 
OpenID Bootcamp Tutorial
OpenID Bootcamp TutorialOpenID Bootcamp Tutorial
OpenID Bootcamp Tutorial
David Recordon
Ā 
OpenID Authentication by example
OpenID Authentication by exampleOpenID Authentication by example
OpenID Authentication by example
Chris Vertonghen
Ā 
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry BuzdinModern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Java User Group Latvia
Ā 
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Matt Raible
Ā 
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Alvaro Sanchez-Mariscal
Ā 
SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬ - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬  - ID&IT 2014 #idit2014SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬  - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬ - ID&IT 2014 #idit2014Nov Matake
Ā 
Stateless authentication for microservices
Stateless authentication for microservicesStateless authentication for microservices
Stateless authentication for microservices
Alvaro Sanchez-Mariscal
Ā 
Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)Simon Willison
Ā 
OpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee WebinarOpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee Webinar
Matterport
Ā 

Viewers also liked (13)

JWT Agile Framework
JWT Agile FrameworkJWT Agile Framework
JWT Agile Framework
Ā 
Stateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWTStateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWT
Ā 
Understanding OpenID
Understanding OpenIDUnderstanding OpenID
Understanding OpenID
Ā 
JWT Authentication with AngularJS
JWT Authentication with AngularJSJWT Authentication with AngularJS
JWT Authentication with AngularJS
Ā 
OpenID Bootcamp Tutorial
OpenID Bootcamp TutorialOpenID Bootcamp Tutorial
OpenID Bootcamp Tutorial
Ā 
OpenID Authentication by example
OpenID Authentication by exampleOpenID Authentication by example
OpenID Authentication by example
Ā 
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry BuzdinModern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Ā 
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Ā 
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Ā 
SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬ - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬  - ID&IT 2014 #idit2014SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬  - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM ęŠ€č”“č§£čŖ¬ - ID&IT 2014 #idit2014
Ā 
Stateless authentication for microservices
Stateless authentication for microservicesStateless authentication for microservices
Stateless authentication for microservices
Ā 
Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)
Ā 
OpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee WebinarOpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee Webinar
Ā 

Similar to Web 2.0 Expo Berlin: OpenID Emerging from Web 2.0

Implementing OpenID
Implementing OpenIDImplementing OpenID
Implementing OpenID
David Recordon
Ā 
OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007
David Recordon
Ā 
Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.earningreport earningreport
Ā 
Recruitment And Social Media
Recruitment And Social MediaRecruitment And Social Media
Recruitment And Social MediaTWO Social
Ā 
6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation
RalphYoung
Ā 
6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute
RalphYoung
Ā 
Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...
Joanna Hicks
Ā 
Program - Frontiers of Interaction 2010
Program - Frontiers of Interaction 2010Program - Frontiers of Interaction 2010
Program - Frontiers of Interaction 2010
Frontiers of Interaction
Ā 
Airlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for brandingAirlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for brandingSimpliFlying
Ā 
Spiral Of Knowledge - 1967
Spiral Of Knowledge - 1967Spiral Of Knowledge - 1967
Spiral Of Knowledge - 1967
HolisticMeta (Self Employed, Part Time)
Ā 
High stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographicHigh stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographic
Tyson Hackwood
Ā 
High stakes world of Mobile Payments
High stakes world of Mobile PaymentsHigh stakes world of Mobile Payments
High stakes world of Mobile Payments
txtNation
Ā 
Open Source Success: jQuery
Open Source Success: jQueryOpen Source Success: jQuery
Open Source Success: jQuery
jeresig
Ā 
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
SimpliFlying
Ā 
Design4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar SangiorgiDesign4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar Sangiorgi
Marco Ajovalasit
Ā 
Social Media Strategies For Business
Social Media Strategies For BusinessSocial Media Strategies For Business
Social Media Strategies For Business
TWO Social
Ā 
Fringe eu procurement - sara piller
Fringe   eu procurement - sara pillerFringe   eu procurement - sara piller
Fringe eu procurement - sara pillerlgconf11
Ā 
Lobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gainLobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gainEmad Hamed
Ā 

Similar to Web 2.0 Expo Berlin: OpenID Emerging from Web 2.0 (20)

Implementing OpenID
Implementing OpenIDImplementing OpenID
Implementing OpenID
Ā 
OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007
Ā 
Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.
Ā 
Recruitment And Social Media
Recruitment And Social MediaRecruitment And Social Media
Recruitment And Social Media
Ā 
6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation
Ā 
6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute
Ā 
Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...
Ā 
Program - Frontiers of Interaction 2010
Program - Frontiers of Interaction 2010Program - Frontiers of Interaction 2010
Program - Frontiers of Interaction 2010
Ā 
Airlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for brandingAirlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for branding
Ā 
Person schedule
Person schedulePerson schedule
Person schedule
Ā 
Person schedule
Person schedulePerson schedule
Person schedule
Ā 
Spiral Of Knowledge - 1967
Spiral Of Knowledge - 1967Spiral Of Knowledge - 1967
Spiral Of Knowledge - 1967
Ā 
High stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographicHigh stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographic
Ā 
High stakes world of Mobile Payments
High stakes world of Mobile PaymentsHigh stakes world of Mobile Payments
High stakes world of Mobile Payments
Ā 
Open Source Success: jQuery
Open Source Success: jQueryOpen Source Success: jQuery
Open Source Success: jQuery
Ā 
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Ā 
Design4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar SangiorgiDesign4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar Sangiorgi
Ā 
Social Media Strategies For Business
Social Media Strategies For BusinessSocial Media Strategies For Business
Social Media Strategies For Business
Ā 
Fringe eu procurement - sara piller
Fringe   eu procurement - sara pillerFringe   eu procurement - sara piller
Fringe eu procurement - sara piller
Ā 
Lobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gainLobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gain
Ā 

More from David Recordon

Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009
David Recordon
Ā 
A Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity WorkshopA Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity Workshop
David Recordon
Ā 
Anatomy Of "Connect"
Anatomy Of "Connect"Anatomy Of "Connect"
Anatomy Of "Connect"David Recordon
Ā 
OpenID Introduction - IIW2008b
OpenID Introduction - IIW2008bOpenID Introduction - IIW2008b
OpenID Introduction - IIW2008b
David Recordon
Ā 
Learning from Apache to create Open Specifications
Learning from Apache to create Open SpecificationsLearning from Apache to create Open Specifications
Learning from Apache to create Open Specifications
David Recordon
Ā 
"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open
David Recordon
Ā 
Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008David Recordon
Ā 
Building Open Platforms
Building Open PlatformsBuilding Open Platforms
Building Open Platforms
David Recordon
Ā 
Open Platforms in Web 2.0
Open Platforms in Web 2.0Open Platforms in Web 2.0
Open Platforms in Web 2.0
David Recordon
Ā 
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social GraphWeb 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
David Recordon
Ā 
ScubaBots - Ignite Sf
ScubaBots - Ignite SfScubaBots - Ignite Sf
ScubaBots - Ignite SfDavid Recordon
Ā 

More from David Recordon (11)

Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009
Ā 
A Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity WorkshopA Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity Workshop
Ā 
Anatomy Of "Connect"
Anatomy Of "Connect"Anatomy Of "Connect"
Anatomy Of "Connect"
Ā 
OpenID Introduction - IIW2008b
OpenID Introduction - IIW2008bOpenID Introduction - IIW2008b
OpenID Introduction - IIW2008b
Ā 
Learning from Apache to create Open Specifications
Learning from Apache to create Open SpecificationsLearning from Apache to create Open Specifications
Learning from Apache to create Open Specifications
Ā 
"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open
Ā 
Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008
Ā 
Building Open Platforms
Building Open PlatformsBuilding Open Platforms
Building Open Platforms
Ā 
Open Platforms in Web 2.0
Open Platforms in Web 2.0Open Platforms in Web 2.0
Open Platforms in Web 2.0
Ā 
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social GraphWeb 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
Ā 
ScubaBots - Ignite Sf
ScubaBots - Ignite SfScubaBots - Ignite Sf
ScubaBots - Ignite Sf
Ā 

Recently uploaded

LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024
Lital Barkan
Ā 
buy old yahoo accounts buy yahoo accounts
buy old yahoo accounts buy yahoo accountsbuy old yahoo accounts buy yahoo accounts
buy old yahoo accounts buy yahoo accounts
Susan Laney
Ā 
The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...
Adam Smith
Ā 
Top mailing list providers in the USA.pptx
Top mailing list providers in the USA.pptxTop mailing list providers in the USA.pptx
Top mailing list providers in the USA.pptx
JeremyPeirce1
Ā 
Digital Transformation and IT Strategy Toolkit and Templates
Digital Transformation and IT Strategy Toolkit and TemplatesDigital Transformation and IT Strategy Toolkit and Templates
Digital Transformation and IT Strategy Toolkit and Templates
Aurelien Domont, MBA
Ā 
Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...
Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...
Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...
bosssp10
Ā 
Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024
FelixPerez547899
Ā 
Brand Analysis for an artist named Struan
Brand Analysis for an artist named StruanBrand Analysis for an artist named Struan
Brand Analysis for an artist named Struan
sarahvanessa51503
Ā 
FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...
FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...
FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...
jamalseoexpert1978
Ā 
Building Your Employer Brand with Social Media
Building Your Employer Brand with Social MediaBuilding Your Employer Brand with Social Media
Building Your Employer Brand with Social Media
LuanWise
Ā 
Agency Managed Advisory Board As a Solution To Career Path Defining Business ...
Agency Managed Advisory Board As a Solution To Career Path Defining Business ...Agency Managed Advisory Board As a Solution To Career Path Defining Business ...
Agency Managed Advisory Board As a Solution To Career Path Defining Business ...
Boris Ziegler
Ā 
Chapter 7 Final business management sciences .ppt
Chapter 7 Final business management sciences .pptChapter 7 Final business management sciences .ppt
Chapter 7 Final business management sciences .ppt
ssuser567e2d
Ā 
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdfikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
agatadrynko
Ā 
BeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdfBeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdf
DerekIwanaka1
Ā 
Recruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media MasterclassRecruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media Masterclass
LuanWise
Ā 
In the Adani-Hindenburg case, what is SEBI investigating.pptx
In the Adani-Hindenburg case, what is SEBI investigating.pptxIn the Adani-Hindenburg case, what is SEBI investigating.pptx
In the Adani-Hindenburg case, what is SEBI investigating.pptx
Adani case
Ā 
Creative Web Design Company in Singapore
Creative Web Design Company in SingaporeCreative Web Design Company in Singapore
Creative Web Design Company in Singapore
techboxsqauremedia
Ā 
amptalk_RecruitingDeck_english_2024.06.05
amptalk_RecruitingDeck_english_2024.06.05amptalk_RecruitingDeck_english_2024.06.05
amptalk_RecruitingDeck_english_2024.06.05
marketing317746
Ā 
The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...
Adam Smith
Ā 
Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...
Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...
Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...
SOFTTECHHUB
Ā 

Recently uploaded (20)

LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024
Ā 
buy old yahoo accounts buy yahoo accounts
buy old yahoo accounts buy yahoo accountsbuy old yahoo accounts buy yahoo accounts
buy old yahoo accounts buy yahoo accounts
Ā 
The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...
Ā 
Top mailing list providers in the USA.pptx
Top mailing list providers in the USA.pptxTop mailing list providers in the USA.pptx
Top mailing list providers in the USA.pptx
Ā 
Digital Transformation and IT Strategy Toolkit and Templates
Digital Transformation and IT Strategy Toolkit and TemplatesDigital Transformation and IT Strategy Toolkit and Templates
Digital Transformation and IT Strategy Toolkit and Templates
Ā 
Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...
Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...
Call 8867766396 Satta Matka Dpboss Matka Guessing Satta batta Matka 420 Satta...
Ā 
Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024
Ā 
Brand Analysis for an artist named Struan
Brand Analysis for an artist named StruanBrand Analysis for an artist named Struan
Brand Analysis for an artist named Struan
Ā 
FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...
FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...
FIA officials brutally tortured innocent and snatched 200 Bitcoins of worth 4...
Ā 
Building Your Employer Brand with Social Media
Building Your Employer Brand with Social MediaBuilding Your Employer Brand with Social Media
Building Your Employer Brand with Social Media
Ā 
Agency Managed Advisory Board As a Solution To Career Path Defining Business ...
Agency Managed Advisory Board As a Solution To Career Path Defining Business ...Agency Managed Advisory Board As a Solution To Career Path Defining Business ...
Agency Managed Advisory Board As a Solution To Career Path Defining Business ...
Ā 
Chapter 7 Final business management sciences .ppt
Chapter 7 Final business management sciences .pptChapter 7 Final business management sciences .ppt
Chapter 7 Final business management sciences .ppt
Ā 
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdfikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
Ā 
BeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdfBeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdf
Ā 
Recruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media MasterclassRecruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media Masterclass
Ā 
In the Adani-Hindenburg case, what is SEBI investigating.pptx
In the Adani-Hindenburg case, what is SEBI investigating.pptxIn the Adani-Hindenburg case, what is SEBI investigating.pptx
In the Adani-Hindenburg case, what is SEBI investigating.pptx
Ā 
Creative Web Design Company in Singapore
Creative Web Design Company in SingaporeCreative Web Design Company in Singapore
Creative Web Design Company in Singapore
Ā 
amptalk_RecruitingDeck_english_2024.06.05
amptalk_RecruitingDeck_english_2024.06.05amptalk_RecruitingDeck_english_2024.06.05
amptalk_RecruitingDeck_english_2024.06.05
Ā 
The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...
Ā 
Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...
Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...
Hamster Kombat' Telegram Game Surpasses 100 Million Playersā€”Token Release Sch...
Ā 

Web 2.0 Expo Berlin: OpenID Emerging from Web 2.0

  • 1. Emerging From Web 2.0 Web 2.0 Expo Berlin 2007
  • 2. quot;Its deļ¬nitely time to declare quot;OpenID is a protocol made OpenID a winnerquot; for the public, by the public. TechCrunch No one owns or controls your login information:You do.quot; 37signals quot;...sees great potential for OpenID's use alongside enterprise-ready software infrastructurequot; Sun Microsystems quot;taking the world by stormquot; quot;this high proļ¬le announcement marks Tim O'Reilly the importance of single sign on identity technology to the future of the Internetquot; ReadWriteWeb
  • 3. What is OpenID? ā€¢ Single sign-on for the web ā€¢ Simple and light-weight (not going to replace your bank card pin) ā€¢ Easy to use and deploy ā€¢ Built upon proven existing technologies (DNS, HTTP, SSL/TLS, Difļ¬e-Hellman) ā€¢ Decentralized (you don't have to ask anyone permission to implement it) ā€¢ Free!
  • 4. An OpenID is a URI ā€¢ URLs are globally unique and ubiquitous ā€¢ OpenID allows proving ownership of an URI ā€¢ People already have identity at URLs via blogs, photos, MySpace, FaceBook, etc ā€¢ People already describe relationships via URLs (e.g. links to my friends)
  • 6. Beneļ¬ts ā€¢ Reduces the number of usernames and passwords ā€¢ Simpliļ¬es new account creation ā€¢ Allows for lightweight accounts ā€¢ Simpliļ¬es internal SSO ā€¢ Enables wide-spread beneļ¬t of strong authentication ā€¢ Enables decentralized reputation ā€¢ Enables social network portability
  • 7. O M E How Does it Work? D
  • 8. As a Conversation Who are you? Iā€™m davidrecordon.com Prove it!
  • 9. Discovers My Provider quot;openid.serverquot; points to my OpenID Provider
  • 11. Getting an OpenID http://openid.net/get/
  • 13. quot;This is a geek's toy, nobody will ever have an OpenID!quot;
  • 14. ~160 million OpenIDs (including every AOL user) OpenID 1.1 - Estimated from various services
  • 15.
  • 16. quot;Nobody will ever use this!quot;
  • 17. Total Relying Parties (aka places you can login with OpenID) 6,000 4,500 3,000 1,500 0 ov b ay ly '06 ar ne ov ay ly '05 ct ec r g ne p ec '07 b ct ar r st 22 Ap Ap Au Fe Se Fe Ju Ju gu O O M M M M D D Ju Ju N N p p Jan Jan Au Se Se OpenID 1.1 - As viewed by MyOpenID.com
  • 18. quot;So that's great there are so many blogs, but what about something real?quot;
  • 19.
  • 22. like any protocol...think as you implement
  • 23. the best solutions may around the browser
  • 24. MyVidoop Plugin (a password manager tied into your OpenID account add-on for Firefox)
  • 25. Sxipper (a form ļ¬ller password manager with OpenID integration add-on for Firefox)
  • 26. Symantec Identity Client (OpenID form-ļ¬ll, upcoming provider, and claims integration)
  • 27. VeriSign's OpenID SeatBelt (an OpenID convenience and security add-on for Firefox) works with
  • 28. IE Team has posted a job ad mentioning quot;OpenIDquot; quot;Does the idea of redeļ¬ning the role of the Internet browser appeal to you? Do the terms HTTP, RSS, Microformats, and OpenID, excite you? If so, then this just might be the opportunity for you.quot;
  • 29. OpenID is great for innovation
  • 30. ā€œSo, what about OpenID 2.0?ā€
  • 31. OpenID 2.0 ā€¢ Cleans up the 1.1 speciļ¬cation ā€¢ Adds a few useful features ā€¢ Robust extensibility ā€¢ Enhanced service discovery ā€¢ quot;Directed identityquot; ā€¢ XRI ā€¢ About six independent library implementations of ļ¬nal draft
  • 32. ā€œAny OpenID in the enterprise?ā€
  • 33. Offer all employees OpenIDs; open source Enterprise SSO and identity manager with LDAP and OpenID Internal SSO for bug trackers and wikis OpenID Provider with plans to ship in enterprise products this year Shared OpenID Provider for their businesses and partners Project management, CRM, and billing for small businesses
  • 35. I come from E-stonia ā€¢ A small EU country with ~1.3M inhabitants ā€¢ Access to internet considered a ā€œcivil rightā€ ā€¢ Had ļ¬rst parliament elections over the internet in 2005 ā€¢ 80%+ of the population have a digital ID- card
  • 37. ID-card is a... ā€¢ Photo ID like any other ā€¢ We are interested in Electronic ID: ā€¢ The chip contains your name, age, gender and social security number ā€¢ Two PIN codes: one for authentication and one for signing documents
  • 38. Authentication ā€¢ Is about proving who you are. ā€¢ Available to any service that wants to use it ā€¢ Online banking ā€¢ Filing your taxes ā€¢ Various other services
  • 39.
  • 40.
  • 41.
  • 42.
  • 43. quot;How does this happen?quot;
  • 44. Entering your PIN code is your consent to send personal data to the service
  • 46. quot;So what is the problem?quot;
  • 47. Users do not always want this. Users want control of their personal data.
  • 48. What is Identity? ā€¢ Wikipedia: ā€œthe sameness of two thingsā€ ā€¢ ā€œThingsā€ are users ā€¢ Users are website visitors ā€¢ ā€œWho are you?ā€
  • 49. Are you the same you that signed up with us?
  • 51. Same Can be Different ā€¢ Bank: Martin Paljak, the account owner ā€¢ Forum: user who registered as ā€œcatluvr99ā€ ā€¢ Blog: author of the comment ā€¢ http://open.id.ee/martin.paljak is Martin Paljak
  • 52. Is the OpenID you present the same as we have in our database?
  • 53. Websites really need to match identiļ¬ers, not collect your personal data.
  • 54. Solution: OpenID ā€¢ id.ee => open.id.ee ā€¢ OpenID service that uses ID-cards for authentication ā€¢ Gives users more control over their private data ā€¢ Is NOT a government enforced/controlled service
  • 55. Simplicity ā€¢ One privacy policy to check ā€¢ One trust decision to make ā€¢ One purpose for the OpenID service ā€¢ Encapsulate and protect usersā€™ private data
  • 56. No need to sign up, it JustWorks
  • 57. ... if you have the needed hardware and software ...
  • 58.
  • 59.
  • 60.
  • 61. quot;So if everybody implements OpenID, are we all happy?quot;
  • 62. quot;What about website developers?quot;
  • 63. ID-card Sucks! ā€¢ Implementing support is difļ¬cult ā€¢ Technically challenging (SSL certiļ¬cates and such) ā€¢ Users donā€™t like ID-cards anyway as they are often afraid of privacy issues ā€¢ Most sites donā€™t need so high security ā€¢ So... why bother?
  • 64. I Forgot! ā€¢ Mobile-ID: same stuff inside your GSM SIM card ā€¢ Same technology inside ... ā€¢ ... but totally different to implement ... ā€¢ ... AGAIN!!!
  • 65. What is Mobile-ID? ā€¢ Smaller ID-card ā€¢ No hardware needed - your phone is your card reader ā€¢ No need to install software to use it online - websites have it
  • 66.
  • 67.
  • 69.
  • 70. If youā€™re going to write new code, why not OpenID code?
  • 71. Beneļ¬ts of OpenID ā€¢ Only one interface to implement ā€¢ And lots of expertise available globally ā€¢ If website uses open.id.ee service exclusively, it has instant access to both ID-cards and Mobile-ID authentication ā€¢ ... with privacy features included @ no cost
  • 72. So ... ā€¢ Users get more control over their private data and OpenID provides it ā€¢ Websites have a simple and easy way to integrate newest authentication technologies with OpenID
  • 73. Finally a win-win solution?
  • 75. Anonymity ā€¢ Users want anonymity ā€¢ At least partial ā€¢ Remaining anonymous is a privilege ā€¢ Spam, death threats etc must be punishable
  • 76. The story ā€¢ Riots in Tallinn that leaded to cyber-attacks ā€¢ Petition letter to force a politician resign collected almost 100k names and e-mails ā€¢ Including ā€œGeorge Bushā€, ā€œRex the dogā€ and ā€œ!@#$ youā€ ā€¢ Result: nothing.
  • 77. OpenID 2.0 ā€¢ New feature: identity selection ā€¢ You get to choose the OpenID sent to the website ā€¢ Choose between open.id.ee/martin.paljak ...
  • 79. Anonymous OpenID ā€¢ No (zero) personal data in the URL ā€¢ One anonymous URL per user per website ā€¢ The ā€œaccountā€ problem mitigated ā€¢ Still a guarantee that the user behind the OpenID is a real person
  • 80.
  • 81.
  • 82. Extra Features ā€¢ Identity theft virtually impossible ā€¢ re-claiming is painless ā€¢ Some registration data is always true ā€¢ If user chooses to send it ā€¢ ā€œWhy do they need it?ā€
  • 83. Why do I Care? ā€¢ Iā€™m a user too! ā€¢ We export the ID technology of Estonia ā€¢ Online privacy issues are being discussed ā€¢ Veriļ¬ed anonymity contributes to e-democracy
  • 84. Why you should care! ā€¢ Implement OpenID - get access to our technology ā€¢ Other EU countries deploying ID-cards ā€¢ Similar problems ā€¢ Similar solutions ā€¢ OpenID is designed for interoperability ā€¢ ID-cards are in theory
  • 85. Thanks! Questions? http://openid.net/ https://open.id.ee/about/english David Recordon Martin Paljak davidrecordon.com http://ideelabor.ee david@sixapart.com martin@ideelabor.ee